Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | | Merge pull request #2581 from reaperhulk/crlentry-invaliditydate | Alex Gaynor | 2015-12-26 | 2 | -3/+34 | |
|\ \ | |/ |/| | add invaliditydate class for crl entry extensions | |||||
| * | ...pep8 | Paul Kehrer | 2015-12-26 | 1 | -0/+1 | |
| | | ||||||
| * | add __hash__ to InvalidityDate | Paul Kehrer | 2015-12-26 | 1 | -0/+6 | |
| | | ||||||
| * | add invaliditydate class for crl entry extensions | Paul Kehrer | 2015-12-26 | 2 | -3/+27 | |
| | | ||||||
* | | Refs #2578 -- implement __hash__ on CRLNumber | Alex Gaynor | 2015-12-26 | 1 | -0/+7 | |
|/ | ||||||
* | switch CRLReason to use a class | Paul Kehrer | 2015-12-26 | 2 | -5/+28 | |
| | ||||||
* | Merge pull request #2575 from reaperhulk/crlentry-extensions-classes | Alex Gaynor | 2015-12-26 | 2 | -7/+44 | |
|\ | | | | | start switching the CRL entry extensions to be full-fledged classes | |||||
| * | start switching the CRL entry extensions to be full-fledged classes | Paul Kehrer | 2015-12-25 | 2 | -7/+44 | |
| | | | | | | | | first up: CertificateIssuer | |||||
* | | make the Extensions class support indexing | Paul Kehrer | 2015-12-26 | 1 | -0/+12 | |
|/ | ||||||
* | support revoked certificates in CertificateRevocationListBuilder | Paul Kehrer | 2015-12-25 | 1 | -0/+47 | |
| | ||||||
* | RevokedCertificateBuilder | Paul Kehrer | 2015-12-25 | 2 | -2/+82 | |
| | ||||||
* | add create_x509_revoked_certificate to x509backend interface | Paul Kehrer | 2015-12-25 | 2 | -0/+12 | |
| | ||||||
* | use type instead of __class__ | Paul Kehrer | 2015-12-25 | 1 | -1/+1 | |
| | ||||||
* | coverage for invalid extensions | Paul Kehrer | 2015-12-25 | 1 | -0/+8 | |
| | ||||||
* | add extension support to the CRLBuilder | Paul Kehrer | 2015-12-25 | 1 | -1/+111 | |
| | ||||||
* | Merge pull request #2567 from alex/this-is-america | Paul Kehrer | 2015-12-24 | 1 | -1/+1 | |
|\ | | | | | Spell serialization consistently | |||||
| * | Spell serialization consistently | Alex Gaynor | 2015-12-24 | 1 | -1/+1 | |
| | | ||||||
* | | CertificateRevocationListBuilder | Paul Kehrer | 2015-12-24 | 2 | -3/+228 | |
|/ | | | | | RSA keys only. Currently does not support CRL extensions or CRLEntry extensions. | |||||
* | coverage | Paul Kehrer | 2015-12-24 | 1 | -0/+5 | |
| | ||||||
* | add create_x509_crl interface | Paul Kehrer | 2015-12-24 | 1 | -0/+8 | |
| | ||||||
* | full indexing support + testsg | Alex Gaynor | 2015-12-24 | 1 | -3/+8 | |
| | ||||||
* | tests on indexing | Alex Gaynor | 2015-12-24 | 1 | -1/+12 | |
| | ||||||
* | address review comments | Paul Kehrer | 2015-12-23 | 1 | -8/+3 | |
| | ||||||
* | add test that fails if CRL references aren't properly retained | Paul Kehrer | 2015-12-23 | 1 | -0/+19 | |
| | | | | | | If the X509_CRL reference is not properly retained then this test will return an openssl error or potentially a crash as it's reading freed memory to obtain the revocation_date and serial_number | |||||
* | missed a test for CRLNumber not being an integer, oops | Paul Kehrer | 2015-12-22 | 1 | -0/+4 | |
| | ||||||
* | CRLNumber needs to be a class for reasons. | Paul Kehrer | 2015-12-22 | 2 | -1/+16 | |
| | ||||||
* | add support for parsing AuthorityInfoAccess and IssuerAltName CRL exts | Paul Kehrer | 2015-12-22 | 1 | -3/+18 | |
| | | | | Expand the CRL extensions test to check the value | |||||
* | support parsing CRL extensions in the OpenSSL backend | Paul Kehrer | 2015-12-21 | 1 | -5/+17 | |
| | ||||||
* | add test for byte matching | Paul Kehrer | 2015-12-21 | 1 | -0/+24 | |
| | ||||||
* | add a CRL public_bytes method | Paul Kehrer | 2015-12-20 | 1 | -0/+42 | |
| | ||||||
* | Merge pull request #2538 from reaperhulk/empty-crls-are-beautiful-too | Alex Gaynor | 2015-12-20 | 1 | -0/+8 | |
|\ | | | | | support CRLs with no revoked certificates | |||||
| * | support CRLs with no revoked certificates | Paul Kehrer | 2015-12-20 | 1 | -0/+8 | |
| | | ||||||
* | | Merge pull request #2525 from nbastin/20151112-access-method | Paul Kehrer | 2015-12-20 | 2 | -3/+40 | |
|\ \ | |/ |/| | issue-2524 | |||||
| * | Dealing with the pedantry of pep8 | Nick Bastin | 2015-12-20 | 1 | -2/+0 | |
| | | ||||||
| * | Test for non-standard AIA support in CertificateBuilder | Nick Bastin | 2015-12-20 | 1 | -0/+32 | |
| | | ||||||
| * | Dangling pep8 fix | Nick Bastin | 2015-12-20 | 1 | -1/+1 | |
| | | ||||||
| * | PEP8 fixes | Nick Bastin | 2015-12-20 | 1 | -1/+0 | |
| | | ||||||
| * | Style cleanup, missing import | Nick Bastin | 2015-12-20 | 1 | -3/+6 | |
| | | ||||||
| * | Add test for arbitrary access_method | Nick Bastin | 2015-12-20 | 1 | -0/+4 | |
| | | ||||||
| * | Allow any OID for access_method, validate OIDs at creation time, fix tests. | Nick Bastin | 2015-12-20 | 1 | -1/+2 | |
| | | ||||||
* | | Change password callback to use userdata pointer | Christian Heimes | 2015-12-20 | 1 | -2/+15 | |
|/ | | | | | | | | | Instead of a closure the pem_password_cb now uses the void *userdata argument to exchange data with the callback function. It's a necessary step to port all callbacks to new static callbacks. See: #2477 Signed-off-by: Christian Heimes <christian@python.org> | |||||
* | Merge pull request #2535 from alex/encode-dss | Paul Kehrer | 2015-12-19 | 1 | -3/+3 | |
|\ | | | | | use the non-deprecated name for this function | |||||
| * | use the non-deprecated name for this function | Alex Gaynor | 2015-12-19 | 1 | -3/+3 | |
| | | ||||||
* | | Merge pull request #2530 from nbastin/20151214-oid-val | Paul Kehrer | 2015-12-18 | 2 | -36/+72 | |
|\ \ | |/ |/| | OID validation | |||||
| * | Avoid IndexError on too-short OIDs, add test for regression | Nick Bastin | 2015-12-17 | 1 | -0/+4 | |
| | | ||||||
| * | OID validation | Nick Bastin | 2015-12-14 | 2 | -36/+68 | |
| | | ||||||
* | | require not_valid_after >= not_valid_before | Paul Kehrer | 2015-12-13 | 1 | -0/+22 | |
|/ | ||||||
* | add some missing skips | Paul Kehrer | 2015-12-03 | 1 | -0/+2 | |
| | ||||||
* | expose tbs_certrequest_bytes and signature on CertificateSigningRequest | Paul Kehrer | 2015-12-03 | 1 | -0/+132 | |
| | ||||||
* | implement support for encoding name constraints | Paul Kehrer | 2015-12-02 | 1 | -0/+35 | |
| |